Security Advisory

CVE-2026-22049

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-22 18:52:14
Last updated 2026-07-25 03:55:53
Assigner netapp
CVSS score 8.7
State PUBLISHED

Description

ONTAP versions 9.16.1 and higher with WebAuthn multi-factor authentication (MFA) configured are susceptible to a vulnerability related to the Relying Party ID which when successfully exploited could allow an attacker with valid credentials to bypass MFA.